cbcvebase.
CVE-2023-53321
published 2025-09-16

CVE-2023-53321: In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211_hwsim: drop short frames While technically some control frames like ACK are…

PriorityP428high7.1CVSS 3.1
AVLACLPRLUINSUCHINAH
EPSS
0.14%
3.7th percentile
In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211_hwsim: drop short frames While technically some control frames like ACK are shorter and end after Address 1, such frames shouldn't be forwarded through wmediumd or similar userspace, so require the full 3-address header to avoid accessing invalid memory if shorter frames are passed in.

Affected

17 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.55-1 (bookworm)linux 6.1.55-1 (bookworm)
linuxlinux
linuxlinux>= 05d610af3e71a782fa28a1351b687da982d208ee < 3beb97bed860d95b14ad23578ce8ddaea62023db3beb97bed860d95b14ad23578ce8ddaea62023db
linuxlinux>= 05d610af3e71a782fa28a1351b687da982d208ee < 672205c6f2d11978fcd7f0f336bb2c708e28874b672205c6f2d11978fcd7f0f336bb2c708e28874b
linuxlinux>= 05d610af3e71a782fa28a1351b687da982d208ee < c64ee9dd335832d5e2ab0a8fc83a34ad4c729799c64ee9dd335832d5e2ab0a8fc83a34ad4c729799
linuxlinux>= 05d610af3e71a782fa28a1351b687da982d208ee < b9a175e3b250b0dc6e152988040aa5014e98e61eb9a175e3b250b0dc6e152988040aa5014e98e61e
linuxlinux>= 05d610af3e71a782fa28a1351b687da982d208ee < 89a41ed7f21476301659ebd25ccb48a60791c1a789a41ed7f21476301659ebd25ccb48a60791c1a7
linuxlinux>= 05d610af3e71a782fa28a1351b687da982d208ee < fba360a047d5eeeb9d4b7c3a9b1c8308980ce9a6fba360a047d5eeeb9d4b7c3a9b1c8308980ce9a6
linuxlinux_kernel< 5.4.2575.4.257
linuxlinux_kernel>= 0 < 5.10.197-15.10.197-1
linuxlinux_kernel>= 0 < 6.1.55-16.1.55-1
linuxlinux_kernel>= 0 < 6.5.6-16.5.6-1
linuxlinux_kernel>= 0 < 6.5.6-16.5.6-1
linuxlinux_kernel>= 5.11 < 5.15.1335.15.133
linuxlinux_kernel>= 5.16 < 6.1.556.1.55
linuxlinux_kernel>= 5.5 < 5.10.1975.10.197
linuxlinux_kernel>= 6.2 < 6.5.56.5.5

CVSS provenance

nvdv3.17.1HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
osv7.1HIGH
vendor_debian7.1HIGH
vendor_redhat7.1HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.